Forgot your password?
typodupeerror

Comment Re: I'm still wondering (Score 1) 179

Bankrolling those groups gave Iran influence.

And Hitler gained influence by waging wars of conquest against Europe. This just seems to be playing with words at this point.

Think about the JCPOA. They agreed to stop refinement in exchange for unfreezing assets.

They never agreed to stop refinement. Normally nuclear talks with countries goes like hand over your centrifuges and we'll make it worth your while. Country agrees and that's the end of it... Iran instead elected to waste well north of a trillion dollars in nuclear production and sanctions for some reason...

Fast forward to February, Iran offers to give up their 60% in exchange for money. Fast forward to a few months ago, and Iran again wanted assets unfrozen as part of the ceasefire. Trump almost did it too, 100x more than Obama's pallets of cash. Fortunately the ceasefire collapsed first.

Money is a vehicle for funding more terrorism, missile production and nuclear processing. The hundreds of billions Trump was talking about took the form of foreign investments something that has been tried in the past and mostly fails due to the mafia state like nature of the regime.

This tells us what matters to Iran. Not nukes-----they were willing to barter that away. Money. That's where their influence is. That's why they had the Houthis capture that island----it gives them partial control over TWO waterways, sort of.

If Iran wanted money all it has to do is give up terrorism and nukes and it will get all of the money it could ever dream of. What the regime really wants is to continue to wage revolution against the rest of the world. This isn't some hidden fact. They say it openly and demonstrate it continuously with their actions. It is embedded in the very name of the organization running Iran the "Islamic revolutionary guard core"... The entire point of its existence is guarding the revolution. The revolution against the rest of the world it has been waging for the last half century.

Comment Re: I'm still wondering (Score 1) 179

You also need to understand that Iran doesn't want nukes for the military power.

Of course it does.

Iran wants to be a PLAYER in the world, not just a 2-bit terror state.

Iranian regime only cares about terror. Its raison d'etre is externalizing the revolution. Iran continuously wastes its oil wealth on armed groups that wreak havoc throughout the region. Armed groups currently in the process of being rolled up now that the regime is unable to supply them.

It wants the threat they MIGHT get nukes for the socioeconomic leverage it gives them.

That's what the Trump administration didn't get. The ability to control the oil supply is just as good as a nuke to their ambitions.

What ambitions? What do the Iranians think they are getting out of this? Hormuz is a pointless card you play once and it quickly becomes ineffective as the route is bypassed. All Iran managed to gain by playing this was to have an economic hydrogen bomb explode in their face as they are now unable to export oil. Sort of makes banking failures that sparked protests and subsequent massacres of Jan 8th and 9th seem like a stick of TNT in comparison.

Comment Re:I'm still wondering (Score 1) 179

No, DT is completely responsible here. Let me remind you of the history. Obama negotiated a nuclear deal with Iran-- the "Joint Comprehensive Plan of Action:-- in which they would agree not to continue working on isotope enrichment to develop a nuclear bomb

The JCPOA capped enrichment to 3.67% until 2030 and imposed stockpile and centrifuge limits. They kept enriching the entire time while respecting agreed upon limits.

, and they agreed to an international team of inspectors who could examine their nuclear facilities at any time, without prior notice. When DT got into office in 2018 he pulled the United States out of the Iran deal, and, guess what, the Iranians restarted their isotope enrichment program.

They were enriching the whole time. What changed was the ramp to blow thru agreed upon limits.

In his second term, trying to get headlines to distract from other failures of policy, DT attacked Iran, saying that he needed to stop them from developing nuclear weapons. It is now pretty clear that there is no possibility of Iran EVER agreeing again to inspections; there is no way that we will ever get an agreement as good as the one that DT tore up. And Iran's attitude now is that they need to develop a nuclear bomb,

My personal belief after hearing a public statement made by someone on the Iranian side of the JCPOA they were always going for a nuke and JCPOA was seen as a vehicle to that end. It provided the Iranians with sanctions relief giving them money, time and space to pursue all of the necessary industrial process and delivery system productions to enable the regime to become a nuclear weapon state when ready to do so.

The nuclear sanctions and capital expenditures on related infrastructure cost them north of a trillion dollars... kind of hard to swallow the prospect of spending so much money and not actually meaning it in the first place. The regime is ideologically close to Nazis. They openly seek world domination, kill the Jews and subjugation of anyone who isn't them. Probably in everyone's best interests to keep the regime from getting nukes regardless of who the US president is.

Comment Re:Which is it? (Score 1) 125

Amodei and others are worried about what AI that doesn't yet exist may do, not about what current-generation AI can do. AI is getting better, very quickly, and unless there's some blocking obstacle that no one has been able to identify will at some point become far, far smarter than humans, individually or collectively. So before that happens, we need to figure out how to make sure that superintelligent AI wants to help us, and wants to do it in the right way.

AI already helps us to surveil masses of humans, automate judgement of humans, trick and spam humans, automate crimes against humans and ultimately render humans obsolete. A more powerful AI would only serve to assist in doing all of these things more effectively.

I have no reason to doubt authoritarian dictatorships and corporations the world over will perfect the art of making sure super-intelligent AI wants to help in all the right ways.

Years ago around ChatGPT 4 release there was this notion being peddled the AI firms would have to be extra careful to vigilantly guard against escape of super intelligent AI. What was funny about this at the same time we all had a front row seat to OpenAI corrupting itself from within not due to the influence of some advanced superintelligence but merely the simple greed of a self absorbed sociopath.

What Amodei and others are worried about is the pending IPO.

Comment Re: Nothing of value was added (Score 1) 158

No one said rust is magic. But but attempting to claim that whole world of memory safety issues being resolved is somehow countered by a single vulnerability is not just dumb, it's mindbogglingly stupid.

This wasn't just an innocent bug where someone overlooked something or did a typo it was a design failure. Memory safety is being oversold especially the data race aspect when it does not prevent race conditions. Nobody cares about CS pedantry they care about correct operation and rust doesn't provide it.

Rust isn't perfect. But claiming the old tools were is just spectacularly ignorant, especially given the recent history of CVEs related to those "well-working, _old_ tools".

Rather than your dumb fucking US vs THEM approach, how about you advocate for both sides to improve their code?

This is the criticism I have for rust. Its only selling point is the memory safety thing which is in itself insufficient to justify rewriting everything in a different language with commensurate risks of introducing bugs in the process. What is needed are better analysis tools and better means of imposing constraints to enable correct operation across all concerns not just a single one. This means better tooling not playing pointless musical chair games with languages.

I think before long AI driven proof assistants will make all of this rather moot with rust being too little too late to the party.

Comment Re: We are going so fast we need to slow down! (Score 1) 118

You apparently did not read the source materials. Let me quote the Anthropic threat report for you:

I accepted your CISA reference. I'll accept references from other similar organizations or law enforcement. I am unwilling to defer to Anthropic as they have a clear conflict of interest with billions of dollars on the line and a track record of manipulative behavior.

Having said this I remain disappointed in the continued failure to read your own references. This is a report titled "Detecting and countering misuse of AI" it speaks in general terms about AI and misuse of AI services for crime. It is not focused entirely on the distillation issue by leading Chinese AI firms.

The quote you referenced:

"These groups then often sell that access through brokers, which often feed into fraudulent AI reseller networks that rotate in new stolen API keys and session tokens until they exhaust their usage. Malicious actors also use or purchase these stolen API keys and session tokens from brokers for their cyber attack operations."

Is in reference to the section on crime and the use of AI to commit crimes under the heading "AI supply chain as target, loot, and attack compute". This is separate from the Chinese distillation allegations.

In fact NONE of the named distillation campaigns described on pg147 thru the end of the report GTG 16005, GTG-16002, GTG-16001, GTG-16006, GTG-16008, GTG-16012, GTG-16003 say anything whatsoever about stolen credit cards or stolen credentials. I wonder why that is? Why does CISA not mention the stolen credit cards and stolen credentials? Perhaps because it never happened?

Over the last several months, unauthorized labs have developed increasingly sophisticated methods to circumvent our defenses and harvest the capabilities of US frontier models. These labs generally access Anthropicâ(TM)s models by routing requests through proxy services, also known as âoetransfer stations.â To circumvent our geographic restrictions and related controls, these proxy services create thousands of new accounts using false identities, fake or stolen credit cards, and stolen API keys. They will often use stolen API credentials belonging to legitimate companies or individuals to give unauthorized entities access to US frontier models. These fraudulent activities harm legitimate customers. The graphic below illustrates the life cycle of an illicit distillation campaign.

This is general language that speaks to "unauthorized labs" without naming names and incurring associated libel per se liability. It is impossible from the language to link stolen cards and stolen credentials to any particular or any subset of AI firms because no such linkage is present in the text.

If you separately have credible evidence of stolen credit cards and stolen credentials being used by the relevant leading Chinese AI firms I am interested in learning more about it.

I'd implore you to stick to the facts and actually read the source materials before accusing others of 'peddling bullshit.' Your claim that AI distillation doesn't use hacked credentials is patently false.

Please just stop digging. You obviously just CTRL+F for keyword and cut and paste without even bothering to understand the context of the statements. This same sloppiness is pervasive throughout your statements.

The underlying argument you are peddling is also rather crazy in its own right. A "distillation attack" does not require stolen credit cards or stolen credentials. The modality of access to the teacher model is not even relevant to its definition. It doesn't stop being a "distillation attack" even if the lab paid the normal rate for access to the model.

That someone somewhere performing distillation to improve their models uses a stolen credit card to do so is irrelevant... It doesn't in any way justify calling distillation an attack.

Imagine if I decided going to a supermarket and filling the shopping cart up to the brim would be called a "shopping attack" ... when someone calls my bullshit term out I turn around and point to some rando who filled their cart and didn't pay on their way out to justify the attack terminology... even though most people who fill their shopping carts to the brim and do pay are still performing a "shopping attack".
This is the exact same logic you are attempting to peddle here. It make no sense.

Comment Re:counterpoint (Score 1) 200

Your rant about fires is just that, a rant. Fires are rare for both house batteries and EVs, with exception of some very specific US brands and models of EVs. Generally having an ICEV and petrol cans for ICE gardening stuff is a far bigger risk. You need to stop treating one off news reports or viral videos of battery fires as a general indicator of risk and look at the actual stats. House batteries and EVs have mandated standards designed to minimise risk. It is cheap low quality battery powered consumer products that are the real fire risk.

All of this equipment is a fire risk... panels, wiring, connectors, high current electronics and batteries. Personally I wouldn't keep any of it in my home. Seen enough shit burn down because a bug crawled into the wrong section or a weak crimp lead to catastrophic failure.. a solar panel develops a hotspot due to micro cracking and catches fire. It's insane what the smallest defect can cause in high current DC environments. Large LFP batteries while much safer than EV batteries can still fail and when they do off-gas hazardous flourides and insane amounts of hydrogen gas.

There are risks people are willing to take in exchange for something of value to them. People are willing to accept dangers of driving in exchange for being able to get around and do the things they want to do. Home storage on the other hand provides no substantive benefit from any sort of policy or grid architecture perspective... it is suboptimal from a cost perspective and an unnecessary safety risk.. Utility scale ESS and PV have in excess of a 2x cost advantage over residential without any of the commensurate risks to residential dwellings. It isn't something I don't understand how anyone can justify.

I do understand some people do it as a hobby or want to be off-grid to prepare for the next zombie apocalypse. Beyond the fringe bullshit it makes no sense from either a safety or cost perspective.

Comment Re: We are going so fast we need to slow down! (Score 1) 118

They absolutely are stealing people's credentials. These stolen credentials power the massive network of "transfer station" relays used by China. It's in Anthropic's threat report , and also reported on by CISA.

The reference you provided does NOT support your statements. There is no assertion made credentials are being stolen.

Yes, and also different behaviors in that they can remove the safeguards. After a distillation attack, the "student" model can be trained without safeguards.

This is getting weird. The data is being used to train an external model Anthropic does not control. Of course people with control over that model can do whatever they want to it because it is their model not Anthropics. No safeguards are being removed from Anthropic or being bypassed at Anthropic.

Your statement "when you use industrial-scale to intentionally break guardrails and get the AI engine to essentially spill its secrets" lacks a nexus to reality.

As noted above, the Chinese transit router attacks constitute a massive credential stuffing attack by means of using the "transfer stations" that rely on hacked credentials, API keys, and session tokens.

Again it does no such thing neither does the reference you provided support your assertion. To quote the reference:

"Further, China-based AI companies use a gray market of proxies known as âoetransfer stationsâ to bypass U.S. AI companiesâ(TM) geographic restrictions, breach terms of use, evade safeguards, and undermine traceability."

It says nothing about stolen or hacked credentials.

True, but using illegally obtained credentials to learn from your competition, and then conducting trade secrets and intellectual property theft so that you can profit, is definitely a crime.

The stolen / hacked credential claims seem to be entirely an invention of your own mind. Further there is no universe in which distillation constitutes IPR theft.

Now, whether they deserve it for training their AI models using massive amounts of other people's intellectual property, and every comment me and scores of others ever posted on StackExchange is another question.

Stick to the facts and stop peddling bullshit.

Comment Re:No spying possible if no camera & microphon (Score 1) 123

You misinterpreted what your stats mean. In fact they make my point. The market for amazon/google/whatever HDMI sticks is evidence that consumers are looking for a smart experience.

Your statements were pretty clear:

"The privacy nightmare not withstanding people actually *want* Smart TVs."

"The trend for home simplification is clear among wider consumers, so it's a hard pill to swallow to tell them to buy a commercial sign display, and then bolt another box to it for functionality... and then they need to trust that other box."

Now you claim "they" are really looking for a "smart experience" whatever the heck this means when before you repeatedly explicitly said "Smart TV".

But they exist to support two other market features: a) TVs last a long time. b) media updates don't. Virtually the entire market for those sticks exists to support existing dumb TVs, or smart TVs that were abandoned (e.g. we went out and bought a Google Chromecast when our 10 year old smart TV stopped supporting Netflix, we then proceeded to sell that Chromecast when we bought a new TV because the new TV once again supported Netflix.

Either people are looking for simplification and "*want* smart TVs" or they don't actually care because they can just pick up a cheap HDMI stick and get the same thing externally. Pick one. Not caring undermines your assertion that they care.

There's no evidence that the world is moving away from simplification / unification. The sales figures and market size of smart all-in-one devices and continued sales of new smart TVs is evidence of this.

Again the evidence against simplicity is large amounts of unnecessary complexity and fragmentation in the usability of these devices.

And the app experience while shitty is not at all related to this trend: in fact it once again supports my point that consumers are chasing smart integrated experiences and will go so far as to use shitty apps with horrendous UX to get it.

You keep contradicting yourself. On one hand people want "smart integrated experiences" ... although I'm not fully certain what this even means... yet on the other hand they get a dumb, fragmented disintegrated experience which you also assert doesn't matter. I don't know how to square these things. Seemingly one obvious contradiction after another.

Slashdot Top Deals

(1) Never draw what you can copy. (2) Never copy what you can trace. (3) Never trace what you can cut out and paste down.

Working...